Medium severity5.4NVD Advisory· Published Jul 12, 2021· Updated Jun 17, 2026
CVE-2020-19204
CVE-2020-19204
Description
An authenticated Stored Cross-Site Scriptiong (XSS) vulnerability exists in Lightning Wire Labs IPFire 2.21 (x86_64) - Core Update 130 in the "routing.cgi" Routing Table Entries via the "Remark" text box or "remark" parameter. It allows an authenticated WebGUI user to execute Stored Cross-site Scripting in the Routing Table Entries.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Lightning Wire Labs/IPFiredescription
- Range: 2.21 Core Update 130
Patches
Vulnerability mechanics
References
3- gist.github.com/dharmeshbaskaran/1fdc069c0ad729d12bf3304b5f19b02dnvdMitigationPatchThird Party Advisory
- blog.ipfire.org/post/ipfire-2-23-core-update-133-has-been-releasednvdRelease NotesVendor Advisory
- www.lightningwirelabs.comnvdThird Party Advisory
News mentions
0No linked articles in our index yet.